Researcher finds flaw in Samsung fingerprint check

Apr 17, 2014
A Samsung Galaxy S5 smartphone is displayed at a store in Seoul on April 11, 2014

A Berlin-based researcher says he has managed to fool the fingerprint-based security system on Samsung's new Galaxy S5 smartphone using wood glue and a picture of the original print.

Ben Schlabs, who works for Security Research Labs, says the trick is identical to the one hackers used to unlock Apple's iPhone 5s last year. The S5 flaw is potentially more serious because Schlabs says he was also able to trick the electronic payment app PayPal, which uses Samsung's fingerprint authentication.

Schlabs says users concerned about security can choose to use a strong password instead of the convenient but flawed fingerprint system.

A spokeswoman for Samsung in Germany wasn't immediately able to comment Thursday.

In a statement, PayPal says it stands behind the system and has other fraud-protection measures in place.

Explore further: Fingerprint security convenient, but not flawless

4.5 /5 (2 votes)
add to favorites email to friend print save as pdf

Related Stories

Fingerprint security convenient, but not flawless

Feb 26, 2014

(AP)—Samsung's upcoming Galaxy S5 smartphone will be at least the third to have a fingerprint sensor for security but it's alone in letting you use that for general shopping, thanks to a partnership with ...

Taiwan's TSMC making chips for new iPhone: report

Mar 05, 2014

Taiwan Semiconductor Manufacturing Co has started producing chips for Apple's next iPhone, a report said Wednesday, as speculation swirls that the US firm could be offloading rival Samsung as a supplier.

The future of biometric technology

Mar 06, 2014

Biometric security such as fingerprint, face and voice recognition is set to hit the mainstream as global technology companies market the systems as convenient and easy to use, according to a prominent information ...

Recommended for you

CloudFlare tackles lost SSL key risk with Keyless SSL

Sep 19, 2014

Organizations looking for and concerned about optimal security protection are the targets of a new service announced by San Francisco-based CloudFlare. The offering is called Keyless SSL. CloudFlare explained ...

When does Google hand over your data to governments?

Sep 19, 2014

Governments around the world want to know a lot about who we are and what we're doing online and they want communications companies to help them find it. We don't know a lot about when companies hand over ...

User comments : 0